节点文献
电子商务平台“二次放号”被盗账号检测研究:以美团为例
Detecting compromised accounts caused by phone number recycling on e-commerce platforms:taking Meituan as an example
【摘要】 “二次放号”是指移动运营商回收已停机手机的号码并将其重新分配给新号主的行为。这种操作方式对电子商务平台现有身份验证解决方案的可靠性构成了威胁。具体而言,重新分配号码的新号主可以使用该号码之前已绑定的应用程序账户,并可能基于此开展欺诈活动。对于拥有庞大用户群体的电子商务平台而言,现有的基于移动运营商重新分配号码数据库的解决方案成本高昂。因此,我们迫切需要一种只依赖应用程序信息的解决方案。本文深入探究了因二次放号引发的被盗账号检测问题。基于对美团真实数据集的分析发现,被盗账户具有独特的统计特征和时序模式。基于这些观察结果,我们提出一种时序模式与统计特征融合模型(TSF)。该模型分别设计了时序模式编码器和统计特征编码器,旨在捕获能够有效区分正常账号和异常账号的时序演化模式和关键行为特征。在美团数据集和IEEE-CIS数据集上进行的大量实验表明,TSF的性能明显优于其它基线模型,进一步验证了所提模型的有效性。
【Abstract】 Phone number recycling(PNR) refers to the event wherein a mobile operator collects a disconnected number and reassigns it to a new owner. It has posed a threat to the reliability of the existing authentication solution for e-commerce platforms. Specifically, a new owner of a reassigned number can access the application account with which the number is associated, and may perform fraudulent activities. Existing solutions that employ a reassigned number database from mobile operators are costly for e-commerce platforms with large-scale users. Thus, alternative solutions that depend on only the information of the applications are imperative. In this work, we study the problem of detecting accounts that have been compromised owing to the reassignment of phone numbers. Our analysis on Meituan’s real-world dataset shows that compromised accounts have unique statistical features and temporal patterns. Based on the observations, we propose a novel model called temporal pattern and statistical feature fusion model(TSF) to tackle the problem, which integrates a temporal pattern encoder and a statistical feature encoder to capture behavioral evolutionary interaction and significant operation features. Extensive experiments on the Meituan and IEEE-CIS datasets show that TSF significantly outperforms the baselines, demonstrating its effectiveness in detecting compromised accounts due to reassigned numbers.
【Key words】 Phone number recycling; Neural networks; E-commerce; Compromised account detection;
- 【文献出处】 Frontiers of Information Technology & Electronic Engineering ,信息与电子工程前沿(英文) , 编辑部邮箱 ,2024年08期
- 【分类号】F724.6
- 【下载频次】6